CVE-2024-8857
07.01.2025, 06:15
The WordPress Auction Plugin WordPress plugin through 3.7 does not sanitise and escape some of its settings, which could allow high privilege users such as editors to perform Stored Cross-Site Scripting attacks.
Vendor | Product | Version |
---|---|---|
wpmarka | wordpress_auction | 𝑥 ≤ 3.7 |
𝑥
= Vulnerable software versions